oxsecurity / megalinter

πŸ¦™ MegaLinter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.
https://megalinter.io
GNU Affero General Public License v3.0
1.81k stars 215 forks source link

chore: Configure Renovate #3605

Closed renovate[bot] closed 3 weeks ago

renovate[bot] commented 1 month ago

Mend Renovate

Welcome to Renovate! This is an onboarding PR to help you understand and configure settings before regular Pull Requests begin.

🚦 To activate Renovate, merge this Pull Request. To disable Renovate, simply close this Pull Request unmerged.


Detected Package Files

Configuration Summary

Based on the default config's presets, Renovate will:

πŸ”‘ Do you want to change how Renovate upgrades your dependencies? Add your custom config to renovate.json in this branch. Renovate will update the Pull Request description the next time it runs.


What to Expect

With your current configuration, Renovate will create 12 Pull Requests:

chore(deps): update python docker tag - Schedule: ["at any time"] - Branch name: `renovate/python-3.x` - Merge into: `main` - Upgrade python to `3.12.4` - Upgrade python to `3.12-alpine` - Upgrade python to `3.12.4-alpine3.19` - Upgrade python to `3.12.0-alpine3.17`
chore(deps): update zricethezav/gitleaks docker tag to v8.18.3 - Schedule: ["at any time"] - Branch name: `renovate/zricethezav-gitleaks-8.x` - Merge into: `main` - Upgrade [zricethezav/gitleaks](https://togithub.com/gitleaks/gitleaks) to `v8.18.3`
chore(deps): update dependency mkdocs-glightbox to v0.4.0 - Schedule: ["at any time"] - Branch name: `renovate/mkdocs-glightbox-0.x` - Merge into: `main` - Upgrade [mkdocs-glightbox](https://togithub.com/Blueswen/mkdocs-glightbox) to `==0.4.0`
chore(deps): update dependency mocha to v10.4.0 - Schedule: ["at any time"] - Branch name: `renovate/mocha-10.x-lockfile` - Merge into: `main` - Upgrade [mocha](https://togithub.com/mochajs/mocha) to `10.4.0`
chore(deps): update dependency semver to v7.6.2 - Schedule: ["at any time"] - Branch name: `renovate/semver-7.x` - Merge into: `main` - Upgrade [semver](https://togithub.com/npm/node-semver) to `7.6.2`
chore(deps): update redis docker tag to v7.2.5 - Schedule: ["at any time"] - Branch name: `renovate/redis-7.x` - Merge into: `main` - Upgrade redis to `7.2.5-alpine`
chore(deps): update tflint plugin terraform-linters/tflint-ruleset-aws to v0.32.0 - Schedule: ["at any time"] - Branch name: `renovate/terraform-linters-tflint-ruleset-aws-0.x` - Merge into: `main` - Upgrade [terraform-linters/tflint-ruleset-aws](https://togithub.com/terraform-linters/tflint-ruleset-aws) to `0.32.0`
fix(deps): update dependency mem-fs to v4.1.0 - Schedule: ["at any time"] - Branch name: `renovate/mem-fs-4.x-lockfile` - Merge into: `main` - Upgrade [mem-fs](https://togithub.com/SBoudrias/mem-fs) to `4.1.0`
fix(deps): update dependency open to v10.1.0 - Schedule: ["at any time"] - Branch name: `renovate/open-10.x-lockfile` - Merge into: `main` - Upgrade [open](https://togithub.com/sindresorhus/open) to `10.1.0`
chore(deps): update mcr.microsoft.com/vscode/devcontainers/python docker tag to v1 - Schedule: ["at any time"] - Branch name: `renovate/mcr.microsoft.com-vscode-devcontainers-python-1.x` - Merge into: `main` - Upgrade mcr.microsoft.com/vscode/devcontainers/python to `1-3.10-bullseye`
fix(deps): update dependency @​cspell/dict-medicalterms to v4 - Schedule: ["at any time"] - Branch name: `renovate/cspell-dict-medicalterms-4.x` - Merge into: `main` - Upgrade [@cspell/dict-medicalterms](https://togithub.com/streetsidesoftware/cspell-dicts) to `^4.0.0`
chore(deps): lock file maintenance - Schedule: ["before 4am on Monday"] - Branch name: `renovate/lock-file-maintenance` - Merge into: `main` - Regenerate lock files to use latest dependency versions


🚸 Branch creation will be limited to maximum 2 per hour, so it doesn't swamp any CI resources or overwhelm the project. See docs for prhourlylimit for details.


❓ Got questions? Check out Renovate's Docs, particularly the Getting Started section. If you need any further assistance then you can also request help here.


This PR has been generated by Mend Renovate. View repository job log here.

github-actions[bot] commented 1 month ago

πŸ¦™ MegaLinter status: ⚠️ WARNING

Descriptor Linter Files Fixed Errors Elapsed time
βœ… API spectral 2 0 3.06s
βœ… BASH bash-exec 5 0 0.03s
βœ… BASH shellcheck 5 0 0.14s
βœ… BASH shfmt 5 0 0 0.63s
βœ… COPYPASTE jscpd yes no 4.89s
βœ… DOCKERFILE hadolint 130 0 18.2s
βœ… JSON jsonlint 18 0 0.27s
βœ… JSON v8r 20 0 31.69s
⚠️ MARKDOWN markdownlint 265 0 272 38.4s
βœ… MARKDOWN markdown-table-formatter 265 0 0 141.16s
βœ… OPENAPI spectral 2 0 3.18s
⚠️ PYTHON bandit 211 64 5.27s
βœ… PYTHON black 211 0 0 6.31s
βœ… PYTHON flake8 211 0 3.35s
βœ… PYTHON isort 211 0 0 1.35s
βœ… PYTHON mypy 211 0 19.77s
βœ… PYTHON pylint 211 0 17.16s
βœ… PYTHON ruff 211 0 0 0.71s
βœ… REPOSITORY checkov yes no 40.86s
βœ… REPOSITORY git_diff yes no 0.61s
⚠️ REPOSITORY grype yes 1 25.37s
βœ… REPOSITORY secretlint yes no 18.05s
βœ… REPOSITORY trivy yes no 20.26s
βœ… REPOSITORY trivy-sbom yes no 7.32s
⚠️ REPOSITORY trufflehog yes 1 15.81s
βœ… SPELL cspell 693 0 30.93s
⚠️ SPELL lychee 346 5 7.31s
βœ… XML xmllint 3 0 0 0.63s
βœ… YAML prettier 161 0 0 6.53s
βœ… YAML v8r 102 0 198.05s
βœ… YAML yamllint 162 0 2.37s

See detailed report in MegaLinter reports

_MegaLinter is graciously provided by OX Security_